The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Create connection isolation groups on a client system

Prev Next

A connection isolation firewall rule group instructs Firewall to process only traffic that matches the defined connection type and group criteria.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.



Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Firewall on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Firewall on the Settings page.

  3. Under RULES, click Add Group.

  4. Under Description, specify options for the group.

  5. Under Location, select Enable location awareness and Enable connection isolation. Then, select the location criteria for matching.

  6. Under Networks, for Connection types, select the type of connection (Wired, Wireless, or Virtual) to apply to the rules in this group.

    Note

    Settings for Transport and Executables aren't available for connection isolation groups.

  7. Click OK.

  8. Create new rules within this group, or move existing rules into it from the firewall rule list.

  9. Click Apply.